Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2006-0745
X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return va…
Fedora Core
Patch available
HIGH 7.8
CVE-2006-0453
The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that r…
Fedora Core
Mitigation only
MEDIUM 5.0
CVE-2006-0451
Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (memory consumption) v…
Fedora Core
Mitigation only
MEDIUM 5.0
CVE-2006-0452
dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) vi…
Fedora Core
Mitigation only
MEDIUM 5.0
CVE-2005-3630
Fedora Directory Server before 10 allows remote attackers to obtain sensitive information, such as the password from adm.conf via an IFRAME element, …
Fedora Core
Patch available
HIGH 7.2
CVE-2005-0403
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applic…
Enterprise Linux
Patch available
HIGH 7.5
CVE-2005-1760
sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows l…
Sysreport
Patch available
HIGH 7.5
CVE-2005-0086
Heap-based buffer overflow in less in Red Hat Enterprise Linux 3 allows attackers to cause a denial of service (application crash) or possibly execut…
Enterprise Linux
Mitigation only
HIGH 7.5
CVE-2005-0337
Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to b…
Enterprise Linux
Patch available
HIGH 7.2
CVE-2005-0091
Unknown vulnerability in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch, when using the hugemem kernel, allows local users to read and wri…
Enterprise Linux
Mitigation only
MEDIUM 5.0
CVE-2005-1061
The secure script in LogWatch before 2.6-2 allows attackers to prevent LogWatch from detecting malicious activity via certain strings in the secure f…
Enterprise Linux
Mitigation only
MEDIUM 6.8
CVE-2005-0085
Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the …
Fedora Core
Patch available
MEDIUM 5.0
CVE-2005-0384
Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd c…
Enterprise Linux
No fix yet
MEDIUM 5.0
CVE-2005-0398
The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.
Enterprise Linux
Patch available
MEDIUM 5.0
CVE-2005-0472EPSS 5%
Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.
Enterprise Linux
Patch available
MEDIUM 5.0
CVE-2005-0473
The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that cause…
Enterprise Linux
Patch available
HIGH 7.5
CVE-2005-0605
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
Enterprise Linux
Patch available
HIGH 10.0
CVE-2004-0989EPSS 22%
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code vi…
Fedora Core
Patch available
MEDIUM 5.0
CVE-2004-0960
FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that caus…
Enterprise Linux
Patch available
MEDIUM 5.0
CVE-2004-0961
Memory leak in FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (memory exhaustion) via a series of Access-Request packet…
Enterprise Linux
Patch available
MEDIUM 5.0
CVE-2004-0886EPSS 5%
Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF ima…
Enterprise Linux
Patch available
HIGH 10.0
CVE-2004-0946EPSS 11%
rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stac…
Enterprise Linux
Patch available
HIGH 10.0
CVE-2004-1015EPSS 5%
Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbit…
Fedora Core
Patch available
HIGH 10.0
CVE-2004-1067EPSS 5%
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attacker…
Fedora Core
Patch available
HIGH 10.0
CVE-2004-1154EPSS 13%
Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (appl…
Fedora Core
Mitigation only
HIGH 7.5
CVE-2004-1158
Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window i…
Fedora Core
Patch available
MEDIUM 6.5
CVE-2004-1267EPSS 6%
Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary cod…
Fedora Core
No fix yet
MEDIUM 5.0
CVE-2004-1269EPSS 9%
lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes sub…
Fedora Core
No fix yet
HIGH 7.5
CVE-2004-0803EPSS 8%
Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, …
Enterprise Linux
Patch available
HIGH 10.0
CVE-2004-0607EPSS 5%
The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attack…
Enterprise Linux
Patch available